CVE-2026-32184

HIGH

Microsoft High Performance Compute (HPC) Pack Elevation of Privilege Vulnerability

Title source: cna
STIX 2.1

Description

Deserialization of untrusted data in Microsoft High Performance Compute Pack (HPC) allows an authorized attacker to elevate privileges locally.

Scores

CVSS v3 7.8
EPSS 0.0049
EPSS Percentile 65.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-502
Status published
Products (1)
Microsoft/Microsoft HPC Pack 2019 1.0.0 - 6.3.8355
Published Apr 14, 2026
Tracked Since Apr 14, 2026